Home arrow News arrow Computers arrow Viruses arrive by SMS deceiving the users
English Spanish French German Italian Portuguese
Viruses arrive by SMS deceiving the users
Image

The arrival of the virus to mobile phones was just a matter of time and it is already a fact that permanently evolves and here is the evidence. Through the persuasive social engineering, applied in high indices on the Internet, now it is possible to infect a PC by using it from the scope of the mobile communication.

In real terms, the new trick consists in sending a text message (SMS) to hundreds of users thanking them for the subscription to a service that does not exist: “Thank you for your subscription to the Data Service! From now on we will charge you 2 dollars a day until you decide to cancel your subscription through the Web”. In this way, the recipient of the message will try to cancel the subscription by visiting the corresponding site, where other ways are employed to promote the downloading of the malicious code in an unconscious way.

The specialists in the subject of Websense saw it in this way: “We are being witnesses of the appearance of a next generation of combined threats that are exploiting a new attack vector, that it is not other but the one of the SMS of the mobile telephony. A lot has been said about the insecurity risks related to mobile phones during these years and now they are a fact. As the mobile terminals have become an essential part of our daily life, they are extremely attractive bait for criminals that want to have their great user’s base”.

“The worry of having to pay 2 dollars a day is reason enough for, even the most prudent users, to react to assure they are not subscribed and, in this way, they are unconsciously deceived to download the malicious code.
To use a solution of Web security is the first defense line for any PCs user in order to avoid the access to infested Websites. But this incident shows how hard it is to prevent so sophisticated social engineering attacks that use not only the mobile phone but also the Web”.

Do you remember Bot Dumador?  A variance of this Bot is the one that will be downloaded from that site in which we will try to cancel a subscription that does not exist.
 Though a http Web connection, this Bot can be commanded and it can automatically carry out in the host PC all the tasks, exactly in the same way as a user would do.

Read more...

 

Search

 

spacer.png, 0 kB
Copyright © 2006 Eazel. All rights reserved. spacer.png, 0 kB